The IN_MIDI.DLL plugin 3.01 and earlier, as used in Winamp 2.91, allows remote attackers to execute arbitrary code via a MIDI file with a large Track data size value.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Winamp | Nullsoft | 2.81 (including) | 2.81 (including) |
Winamp | Nullsoft | 2.91 (including) | 2.91 (including) |
Winamp | Nullsoft | 3.0 (including) | 3.0 (including) |
Winamp | Nullsoft | 3.1 (including) | 3.1 (including) |